Sisoftware maintains a narrow product line centered on the Sandra system analysis and benchmarking utility, which serves performance-diagnostics and hardware-assessment roles in technical and enthusiast environments. The vendor's observed disclosures cluster around input-validation weaknesses typical of analysis and reporting tools that consume diverse system data and file formats. Current severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Sisoftware over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2010-5244MEDIUM Untrusted search path vulnerability in SiSoftware Sandra 2010 Lite 2010.7.16.52 allows local users to gain privileges via a Trojan horse dwmapi.dll file in the current working dire | Sep 7, 2012 | 6.9 | 20 | NO | NO |
CVE-2010-1592MEDIUM sandra.sys 15.18.1.1 and earlier in the Sandra Device Driver in SiSoftware Sandra 16.10.2010.1 and earlier allows local users to gain privileges or cause a denial of service (syste | Apr 28, 2010 | 6.9 | 19 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Sisoftware.
Media articles that mention a CVE ID that affects a product developed by Sisoftware — matched by CVE ID, not by vendor name.